Malware

Bulz.261134 (B) removal tips

Malware Removal

The Bulz.261134 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Bulz.261134 (B) virus can do?

  • Executable code extraction
  • Creates RWX memory
  • Unconventionial language used in binary resources: Norwegian (Nynorsk)
  • The binary likely contains encrypted or compressed data.
  • The executable is compressed using UPX
  • Network activity detected but not expressed in API logs
  • Attempts to identify installed AV products by registry key
  • Anomalous binary characteristics

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Bulz.261134 (B)?


File Info:

crc32: 63EFADB5
md5: 35d392c150fdfb48a0e6c447a38df9c6
name: 35D392C150FDFB48A0E6C447A38DF9C6.mlw
sha1: 8ba882af52f702eebadcbe4e73da48fa60abefa4
sha256: 8f60589075886d28313b0514bbec9bb9b569fc71edb32c0f403d4eb42655499b
sha512: 42122e0dcc313dc9ef3bacf206e05871f49359122e7ffb84af842c7b7966c721bdc88ccf61a1850f725f2e33280801add8fb4019091fac7570bcd3fc3ae37921
ssdeep: 3072:Xq96koCkqvCX+70pLrXXfzsPIgx/KHzsodyxrs0/Ws2E4OANT20/MA3qA+XKnt6:699kqvI+YpXf/gx/Oly5ml5pJx//yL
type: PE32 executable (GUI) Intel 80386, for MS Windows, UPX compressed

Version Info:

InternalName: triwylbikes.acs
FileVers: 26.26.361
ProductionVersion: 1.0.22.25
Copyright: Copyrighz (C) 2020, padkafux
TranslationUsa: 0x8712 0x0081

Bulz.261134 (B) also known as:

Elasticmalicious (high confidence)
FireEyeGeneric.mg.35d392c150fdfb48
Qihoo-360HEUR/QVM11.1.DF57.Malware.Gen
McAfeeGenericRXAA-AA!35D392C150FD
SangforMalware
BitDefenderGen:Variant.Bulz.261134
BitDefenderThetaGen:NN.ZexaF.34688.omKfayboeHbG
SymantecML.Attribute.HighConfidence
APEXMalicious
KasperskyUDS:DangerousObject.Multi.Generic
Ad-AwareGen:Variant.Bulz.261134
McAfee-GW-EditionBehavesLike.Win32.Trojan.dc
EmsisoftGen:Variant.Bulz.261134 (B)
SentinelOneStatic AI – Suspicious PE
MicrosoftTrojan:Win32/Azorult.FW!MTB
GridinsoftTrojan.Win32.Kryptik.oa
ZoneAlarmUDS:DangerousObject.Multi.Generic
GDataGen:Variant.Bulz.261134
CynetMalicious (score: 100)
Acronissuspicious
RisingTrojan.Kryptik!1.CFEE (CLASSIC)
eGambitUnsafe.AI_Score_74%
FortinetW32/GenKryptik.ERHN!tr
AVGFileRepMalware
CrowdStrikewin/malicious_confidence_70% (D)

How to remove Bulz.261134 (B)?

Bulz.261134 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment